General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Can't remove vsys specific SSL TLS Service Profile

This is a strange issue.

 

PA-3020 recently upgraded to 7.0.4.  The firewall is in single vsys mode.

 

I installed new SSL certificates for Global Protect.  Somewhere during the process of installing the new certificate and upgrading to 7.0.4, an ssl

...

ESM service account rights

When I try to install the ESM core and console with a service account that does have the logon as a service rights but not administrator rights, I keep running into issues. As I don't like to grant full admin rights to a service account on a box I'd

...

Total Memory increasing after upgrade firmware

Hi All,

 

    We've two PA-5020 running in our environment. After upgrade firmware from 4.1.11 to 6.1.6 (just one device), we found out that total memory in "show system resource" are increasing.

 

      4.1.11 

 

 

      6.1.6 

 

       So just wo

...

4.1.11.png
6.1.6.png

Resolved! How do I identify which PC made a suspicious DNS query?

Hello

 

I have setup the Anti-Spyware Profile in our firewall and I have a lot of threat logs of type spyware suspicious DNS  queries from a domain controller machine and this is cleansed.

Monitor > Logs > Threat list

As you can see I have configure

...

sinkhole.jpg
SOC_CSG by L4 Transporter
  • 6448 Views
  • 3 replies
  • 0 Likes

Resolved! Cisco VPN traffic

If a vpn tunnel has been successfully established from a cisco device and passing through the PA firewall, is it possible for the PA to still drop the traffic destined for the established tunnel?

jdprovine by L4 Transporter
  • 3468 Views
  • 4 replies
  • 0 Likes

Resolved! URL Filtering - Exception Policy based on Machine

Need a way to except a machine from the URL policy. Currently I can only find a way to except a user level however, I have one machine that is not on the domain that is used to communicate to several external services. 

 

 

jharlow by L3 Networker
  • 2520 Views
  • 3 replies
  • 0 Likes

Shadow rule warning messages

Hi All,

 

I have PA-5050 with version 6.0.9 with multi Vsys. I am migrating from perticular Vsys configuration from PA-5050 to PA-3050 physical box. I exported the config from one Vsys from PA-5050 to PA-3050. While committing on PA-3050 I can see sh

...

HA Preemption and Session Syncronization - you need HA2

For whatever reason I didn't see the need to configure HA2. But while testing HA I could not get preemption to work. I read everything I could find online and got frustrated that it would not let the designated firewall take back control automaticall

...

DTG123 by L1 Bithead
  • 2001 Views
  • 2 replies
  • 0 Likes

Linux VPNC leaving duplicate connections

Hi all,

 

Environment Overview:

I have a 3 PA firewalls (connected in a hub-and-spoke fashion - 2 satellites, 1 portal.   All the client VPN traffic (VPNC for Linux, GlobalProtect for Windows) is routed from the satellites to the portal to a trusted

...

mmclimans by L3 Networker
  • 1435 Views
  • 0 replies
  • 0 Likes

Panorama local logging

 

Hi, 

 

we have a panorama which is not logging anything about system/data related to itself or the managed devices.

 

Can you please let me know why this could be the case?

 

I have logged into to the console SSH and typed 

show logging-status devi

...

  • 24281 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels